<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <title>Unable to Process SAML request Error</title>
  <link rel="self" href="https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=113318197" />
  <subtitle>Unable to Process SAML request Error</subtitle>
  <id>https://liferay.dev/c/message_boards/find_thread?p_l_id=119785294&amp;threadId=113318197</id>
  <updated>2026-05-13T23:37:59Z</updated>
  <dc:date>2026-05-13T23:37:59Z</dc:date>
  <entry>
    <title>Unable to Process SAML request Error</title>
    <link rel="alternate" href="https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=113318196" />
    <author>
      <name>Sandeep Neema</name>
    </author>
    <id>https://liferay.dev/c/message_boards/find_message?p_l_id=119785294&amp;messageId=113318196</id>
    <updated>2019-04-20T07:30:08Z</updated>
    <published>2019-04-20T07:30:08Z</published>
    <summary type="html">Hi All,&lt;br /&gt;&lt;br /&gt;We are facing issue with SAML SSO integration. Some of the users are randomly getting error as :- &amp;#34;Unable to process SAML request&amp;#34;.&lt;br /&gt;&lt;br /&gt;This issue is not always happening, it is coming for some of the users randomly. Also the users facing the same issue on a day, next day they are able to login via SSO without any configuration/profile changes.&lt;br /&gt;&lt;br /&gt;We are using latest SAML plugin from the marketplace. Apart from SAML plugin, we are also importing user from LDAP. We have setup LDAP import sync in every 8 hours with our system.&lt;br /&gt;&lt;br /&gt;Some of the wierd observation:-&lt;br /&gt;    1) On our DB, generally the users facing this kind of issue, have in User_ table &amp;#34;passwordModifiedDate&amp;#34; greater than &amp;#34;modifiedDate&amp;#34;.&lt;br /&gt;    2). Sometimes, User_ table both field &amp;#34;passwordModifiedDate&amp;#34; &amp;amp; &amp;#34;modifiedDate&amp;#34; is greater than current timestamp. Query used to fetch data is:- &lt;br /&gt;        &lt;br /&gt;        &lt;strong&gt;&lt;em&gt;SELECT screenName, emailAddress, firstName, lastName, modifiedDate, passwordModifiedDate, status, lastLoginDate, lastFailedLoginDate FROM User_ where ( (CURRENT_TIMESTAMP &amp;lt; passwordModifiedDate OR CURRENT_TIMESTAMP &amp;lt; modifiedDate) and loginDate is not null&lt;/em&gt;&lt;/strong&gt; &lt;br /&gt;        &lt;br /&gt;&lt;br /&gt;We are using Liferay 7.1 version and SAML plugin version is 4.0.1. Apart from that below config is done:- &lt;br /&gt;&lt;strong&gt;LDAP configuration&lt;/strong&gt; that we had done is as below:-&lt;br /&gt;    1). Enable Import - Yes&lt;br /&gt;    2). Enable Import on Startup - No&lt;br /&gt;    3). Import Interval - 480&lt;br /&gt;    4). Import Method - User_&lt;br /&gt;    5). Lock Expiration Time - 86400000&lt;br /&gt;    6). Import user Sync Strategy - Auth Type&lt;br /&gt;    7). Enable User Password on Import - No&lt;br /&gt;    8). Enable Group Cache on Import - Yes&lt;br /&gt;    9). Enable Group Export - Yes&lt;br /&gt;&lt;br /&gt;    Other than this configuration, we have kept settings as unchecked.&lt;br /&gt;    &lt;br /&gt;&lt;strong&gt;SAML Config:&lt;/strong&gt;-&lt;br /&gt;    1). SAML Role:- Service Provider&lt;br /&gt;    2). Require Assertion Signature? - Yes&lt;br /&gt;    3). Other all options are unchecked&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;We have also turned on loggers for SAML related classes and we get the exception always when we get above SAML error as given in attached file.&lt;br /&gt;&lt;br /&gt;Any leads on above will be helpful.</summary>
    <dc:creator>Sandeep Neema</dc:creator>
    <dc:date>2019-04-20T07:30:08Z</dc:date>
  </entry>
</feed>
